PyDFIR / pyDFIRRamLinks
PyDFIRRam is a Python library leveraging Volatility 3 to simplify and enhance memory forensics. It streamlines the research, parsing, and analysis of memory dumps, allowing users to focus on data rather than commands.
☆28Updated last year
Alternatives and similar repositories for pyDFIRRam
Users that are interested in pyDFIRRam are comparing it to the libraries listed below
Sorting:
- Segugio allows the execution and tracking of critical steps in the malware detonation process, from clicking on the first stage to extrac…☆150Updated last year
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆142Updated 2 weeks ago
- Free training course offered at Hack Space Con 2023☆138Updated 2 years ago
- A ProcessMonitor visualization application written in rust.☆183Updated 2 years ago
- A repository of credential stealer formats☆236Updated 6 months ago
- DFIR project to collect and analyze events in Google Workspace☆13Updated last year
- LOLAPPS is a compendium of applications that can be used to carry out day-to-day exploitation.☆194Updated 10 months ago
- Repository of Yara Rules☆132Updated 3 weeks ago
- Lena's repo of Malware Monsters aka Malmons.☆45Updated 3 months ago
- ☆139Updated 2 years ago
- All kinds of tiny shells☆65Updated 2 years ago
- Completely Risky Active-Directory Simulation Hub☆102Updated 2 years ago
- Shellcode loader based on indirect syscall☆22Updated 10 months ago
- ELFEN: Automated Linux Malware Analysis Sandbox☆131Updated 4 months ago
- Python tool to check rootkits in Windows kernel☆204Updated 4 months ago
- Powershell Linter☆86Updated 3 weeks ago
- Ansible + Vagrant + Hyper-V + Vulnerable AD 😎☆90Updated last year
- ☆117Updated 3 weeks ago
- A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files☆127Updated last year
- A curated list of awesome LOLBins, GTFO projects, and similar 'Living Off the Land' security resources.☆205Updated last year
- A repository to store community malware research notes and findings.☆15Updated last week
- Web interface to explore Suricata EVE outputs☆84Updated last month
- This repository contains a comprehensive testing designed for evaluating the performance and resilience of Endpoint Detection and Respons…☆62Updated last year
- A collection of CVEs weaponized by ransomware operators☆128Updated 2 months ago
- 🧰 ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.☆81Updated 8 months ago
- Retired TrustedSec Capabilities☆248Updated last year
- Dissecting and Defeating Ransomware's Evasion Tactics Defcon 32☆17Updated last year
- A comprehensive workshop aimed to equip participants with an in-depth understanding of modern Command and Control (C2) concepts, focusing…☆105Updated 2 years ago
- Cheat sheet to detect and remove linux kernel rootkit☆77Updated last year
- A collection of tools, scripts and personal research☆154Updated 3 weeks ago